top title background image
flash

receipt-xxxx.htm

Status: finished
Submission Time: 2021-04-07 23:51:24 +02:00
Malicious
Phishing
Phisher

Comments

Tags

Details

  • Analysis ID:
    383585
  • API (Web) ID:
    669313
  • Analysis Started:
    2021-04-07 23:51:25 +02:00
  • Analysis Finished:
    2021-04-07 23:57:28 +02:00
  • MD5:
    2ded001890d716d7a47887df38c01102
  • SHA1:
    ec0914e310db45e38e54728634b8c9e7f7bb6e70
  • SHA256:
    9e0a82abb1eeacfd1b7bcb8c67bff4ad686a38de8119e71d1d187db2d350c986
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 48
Error: Incomplete analysis, please check the report for detailed error information
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
88.99.136.47
Germany
162.241.124.32
United States

Domains

Name IP Detection
aimlessanimation.com
162.241.124.32
vsp.wayshop.gr
88.99.136.47

URLs

Name Detection
http://vsp.wayshop.gr/12gfr/8
http://vsp.wayshop.gr/12gfr/#alec.mahmood
http://vsp.wayshop.gr/12gfr/
Click to see the 4 hidden entries
https://aimlessanimation.com/2020/?email=
http://Vsp.wayshop.gr/12gfr/#alec.mahmood
https://aimlessanimation.com/2020/?email=alec.mahmood
http://vsp.wayshop.gr/

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{F12A48C4-9836-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{F12A48C6-9836-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{F12A48C7-9836-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
Click to see the 12 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\ErrorPageTemplate[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\bullet[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\http_404[1]
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\info_48[1]
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\down[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\errorPageStrings[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\12gfr[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\background_gradient[1]
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 1x800, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\httpErrorPagesScripts[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\~DF619FBCD1CCA41A1E.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF6DAB1688D85D34DD.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DFB42B6B68F6C0AA1B.TMP
data
#